Avoiding being used as DDoS reflector.

2009-01-18 Thread Nathan Ollerenshaw
Hi, I've searched around a bit, and noticed some others have similar problems as this but nobody has come up with a decent solution, or at least, I've not found one. I have an Authoritative BIND server. It is configured to only allow recursive queries from localhost, with recursion disabl

Re: Unified Root - Domain Configuration Issue

2009-01-18 Thread Joe Baptista
On Sun, Jan 18, 2009 at 9:39 PM, Mark Andrews wrote: > > > http://tld and u...@tld can *never* work *reliably* as they >would cause namespace clashes. Single label represent local >names not global names. Thats incorrect. It does work but is not recommended because it

Re: Unified Root - Domain Configuration Issue

2009-01-18 Thread Mark Andrews
In message <496fb92d.5050...@peter-dambier.de>, Peter Dambier writes: > Hi ozgurs, > > can you give me your address so I can settup a zone for you? > > e.g. > > ozgursA 127.0.0.1 > > Then you have the proof that it is working. http://tld and u...@tld can *never* work *re

Re: Zone Transfer Problem - Keep getting not authoritative

2009-01-18 Thread Mark Andrews
In message , "Ma rk A. Moore" writes: > We are having some issues with zone transfers b/t our Master & Slave. We > are using Redhat Linux 5.2 with Bind 9.3.4. In our slave server log, we > get "not authoritative" for all zones configured. How do we fix the not > authoritative issue? Any help wou

Re: Mailman and bounces...

2009-01-18 Thread Noel Butler
On Mon, 2009-01-19 at 01:56, Alan Clegg wrote: > While off-topic to BIND, as a point of list management, I would like to > present the following commentary: > > It seems that the previous mailing list software did no list "bounce > management" what-so-ever. If an address was on the list, it w

Re: bind cname for corporate web

2009-01-18 Thread Ben Croswell
This is not possible. It is against RFC, and BIND enforces it, to have CNAME and any other data at the same branch of the DNS tree. In this case you are trying to put a CNAME at the second level domain example.com. However example.com also has an SOA record, several NS records, and possibly MX re

Re: bind cname for corporate web

2009-01-18 Thread Alan Clegg
> Now when I am trying to configure following my domain doesn't resolve. > @ IN CNAME www.abc.com. > OR > example.com. IN CNAME www.abc.com. You can't have a CNAME and any other data at the same label. Since this zone has other data (SOA at the least), you can't do it with a CNAME. Use an

Re: bind cname for corporate web

2009-01-18 Thread David Forrest
On Sun, 18 Jan 2009, Dhaval Thakar wrote: Hi, I am using bind 9.6.0. I want to configure cname for corporate web (example.com). When I mention following my company site opens without sub domain. e.g example.com I dont need to mention www.example.com. @ IN A x.x.x.x I have two ISP with r

bind cname for corporate web

2009-01-18 Thread Dhaval Thakar
Hi, I am using bind 9.6.0. I want to configure cname for corporate web (example.com). When I mention following my company site opens without sub domain. e.g example.com I dont need to mention www.example.com. @ IN A x.x.x.x I have two ISP with radware link proof. Radware device has its own

Mailman and bounces...

2009-01-18 Thread Alan Clegg
While off-topic to BIND, as a point of list management, I would like to present the following commentary: The topic of bounces was brought up recently and I'd like to expound a bit on some of the issues that the change in mailing list managers has caused. It seems that the previous mailing list s

ddos reflection attack

2009-01-18 Thread Alan Clifford
Hello, someone suggest I ask in here. From the log: 16-Jan-2009 19:42:17.105 queries: info: client 69.50.137.175#49046: query: . IN NS + 16-Jan-2009 19:42:17.215 queries: info: client 69.50.137.175#1521: query: . IN NS + 16-Jan-2009 19:42:18.495 queries: info: client 69.50.137.175#1007: que